Language:
If an attacker gains access to a single Active Directory domain, they can easily expand their attack to the entire infrastructure if the relationships between domains and forests are not properly filtered.
Limit dangerous trust relations as much as possible and regularly review their existence if needed for functional reasons.
Name: Dangerous Trust Relationships
Codename: C-DANGEROUS-TRUST-RELATIONSHIP
Severity: High